CVE-2026-59095 | lobehub LobeChat prior 2.2.10-canary.18 Skill Import Service server-side request forgery (Issue 16536)

SecurityVulns

A vulnerability was found in lobehub LobeChat. It has been rated as critical. Affected by this vulnerability is an unknown functionality of the component Skill Import Service. This manipulation causes server-side request forgery.

This vulnerability is handled as CVE-2026-59095. The attack can be initiated remotely. There is not any exploit available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More